AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2004-0385

HIGH · CVSS 10 EPSS 15.50%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2004-06-01 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2004-0385
Severity
HIGH
CVSS
10
EPSS
15.50%
Oracle

Original NVD Description

Heap-based buffer overflow in Oracle 9i Application Server Web Cache 9.0.4.0.0, 9.0.3.1.0, 9.0.2.3.0, and 9.0.0.4.0 allows remote attackers to execute arbitrary code via a long HTTP request method header to the Web Cache listener. NOTE: due to the vagueness of the Oracle advisory, it is not clear whether there are additional issues besides this overflow, although the advisory alludes to multiple "vulnerabilities."